<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – DaoCloud Enterprise (High+Critical)</title>
  <link>https://cvedaily.com/pages/tags/dce.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/dce-severe.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – DaoCloud Enterprise (High+Critical)</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:27:03 +0000</lastBuildDate>
  <item>
    <title>[High] CVE-2025-38361 – In the Linux kernel, the following vulnerability has been resolved:

drm/amd/dis...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-38361</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-38361</guid>
    <pubDate>Fri, 25 Jul 2025 13:15:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-38361</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  drm/amd/display: Check dce_hwseq before dereferencing it  [WHAT]  hws was checked for null earlier in dce110_blank_stream, indicating hws can be null, and should be checked whenever it is used.  (cherry picked from commit 79db43611ff61280b6de58ce1305e0b2ecf675ad)</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-38361">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-37197 – A CWE-89: Improper Neutralization of Special Elements vulnerability used in an S...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-37197</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-37197</guid>
    <pubDate>Wed, 12 Jul 2023 07:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-37197</strong></p>
  <p>A CWE-89: Improper Neutralization of Special Elements vulnerability used in an SQL Command ('SQL Injection') vulnerability exists that could allow a user already authenticated on DCE to access unauthorized content, change, or delete content, or perform unauthorized actions when tampering with the mass configuration settings of endpoints on DCE.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-37197">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-37196 – A CWE-89: Improper Neutralization of Special Elements vulnerability used in an S...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-37196</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-37196</guid>
    <pubDate>Wed, 12 Jul 2023 07:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-37196</strong></p>
  <p>A CWE-89: Improper Neutralization of Special Elements vulnerability used in an SQL Command ('SQL Injection') vulnerability exists that could allow a user already authenticated on DCE to access unauthorized content, change, or delete content, or perform unauthorized actions when tampering with the alert settings of endpoints on DCE.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-37196">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-25552 – A CWE-862: Missing Authorization vulnerability exists that could allow viewing o...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-25552</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-25552</guid>
    <pubDate>Tue, 18 Apr 2023 21:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-25552</strong></p>
  <p>A CWE-862: Missing Authorization vulnerability exists that could allow viewing of unauthorized content, changes or deleting of content, or performing unauthorized functions when tampering the Device File Transfer settings on DCE endpoints.       Affected products: StruxureWare Data Center Expert (V7.9.2 and prior)</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-862</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-25552">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-25549 – A CWE-94: Improper Control of Generation of Code ('Code Injection') vulnerabilit...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-25549</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-25549</guid>
    <pubDate>Tue, 18 Apr 2023 21:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-25549</strong></p>
  <p>A CWE-94: Improper Control of Generation of Code ('Code Injection') vulnerability exists that allows for remote code execution when using a parameter of the DCE network settings endpoint.             Affected products: StruxureWare Data Center Expert (V7.9.2 and prior)</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-25549">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-25548 – A CWE-863: Incorrect Authorization vulnerability exists that could allow access ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-25548</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-25548</guid>
    <pubDate>Tue, 18 Apr 2023 21:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-25548</strong></p>
  <p>A CWE-863: Incorrect Authorization vulnerability exists that could allow access to device credentials on specific DCE endpoints not being properly secured when a hacker is using a low privileged user.    Affected products: StruxureWare Data Center Expert (V7.9.2 and prior)</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-863</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-25548">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-32520 – A CWE-522: Insufficiently Protected Credentials vulnerability exists that could ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-32520</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-32520</guid>
    <pubDate>Mon, 30 Jan 2023 23:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-32520</strong></p>
  <p>A CWE-522: Insufficiently Protected Credentials vulnerability exists that could result in unwanted access to a DCE instance when performed over a network by a malicious third-party. This CVE is unique from CVE-2022-32518. Affected Products: Data Center Expert (Versions prior to V7.9.0)</p>
  <p><strong>CVSS:</strong> 8.0 · <strong>CWE:</strong> CWE-522</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-32520">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-32519 – A CWE-257: Storing Passwords in a Recoverable Format vulnerability exists that c...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-32519</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-32519</guid>
    <pubDate>Mon, 30 Jan 2023 23:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-32519</strong></p>
  <p>A CWE-257: Storing Passwords in a Recoverable Format vulnerability exists that could result in unwanted access to a DCE instance when performed over a network by a malicious third-party. Affected Products: Data Center Expert (Versions prior to V7.9.0)</p>
  <p><strong>CVSS:</strong> 8.0 · <strong>CWE:</strong> CWE-257</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-32519">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-32518 – A CWE-522: Insufficiently Protected Credentials vulnerability exists that could ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-32518</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-32518</guid>
    <pubDate>Mon, 30 Jan 2023 23:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-32518</strong></p>
  <p>A CWE-522: Insufficiently Protected Credentials vulnerability exists that could result in unwanted access to a DCE instance when performed over a network by a malicious third-party. This CVE is unique from CVE-2022-32520. Affected Products: Data Center Expert (Versions prior to V7.9.0)</p>
  <p><strong>CVSS:</strong> 8.0 · <strong>CWE:</strong> CWE-522</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-32518">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-3738 – In DCE/RPC it is possible to share the handles (cookies for resource state) betw...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-3738</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-3738</guid>
    <pubDate>Wed, 02 Mar 2022 23:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-3738</strong></p>
  <p>In DCE/RPC it is possible to share the handles (cookies for resource state) between multiple connections via a mechanism called 'association groups'. These handles can reference connections to our sam.ldb database. However while the database was correctly shared, the user credentials state was only pointed at, and when one connection within that association group ended, the database would be left…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-3738">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-23192 – A flaw was found in the way samba implemented DCE/RPC. If a client to a Samba se...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-23192</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-23192</guid>
    <pubDate>Wed, 02 Mar 2022 23:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-23192</strong></p>
  <p>A flaw was found in the way samba implemented DCE/RPC. If a client to a Samba server sent a very large DCE/RPC request, and chose to fragment it, an attacker could replace later fragments with their own data, bypassing the signature requirements.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-23192">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-13946 – Profinet-IO (PNIO) stack versions prior V06.00 do not properly limit
internal re...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-13946</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-13946</guid>
    <pubDate>Tue, 11 Feb 2020 16:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-13946</strong></p>
  <p>Profinet-IO (PNIO) stack versions prior V06.00 do not properly limit internal resource allocation when multiple legitimate diagnostic package requests are sent to the DCE-RPC interface. This could lead to a denial of service condition due to lack of memory for devices that include a vulnerable version of the stack.  The security vulnerability could be exploited by an attacker with network access…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-13946">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-19707 – On Moxa EDS-G508E, EDS-G512E, and EDS-G516E devices (with firmware through 6.0),...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-19707</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-19707</guid>
    <pubDate>Wed, 11 Dec 2019 02:15:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-19707</strong></p>
  <p>On Moxa EDS-G508E, EDS-G512E, and EDS-G516E devices (with firmware through 6.0), denial of service can occur via PROFINET DCE-RPC endpoint discovery packets.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-19707">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2015-2370 – The authentication implementation in the RPC subsystem in Microsoft Windows Serv...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2015-2370</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2015-2370</guid>
    <pubDate>Tue, 14 Jul 2015 22:59:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2015-2370</strong></p>
  <p>The authentication implementation in the RPC subsystem in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 does not prevent DCE/RPC connection reflection, which allows local users to gain privileges via a crafted application, aka "Windows RPC Elev…</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-264</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2015-2370">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2013-4408 – Heap-based buffer overflow in the dcerpc_read_ncacn_packet_done function in libr...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2013-4408</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2013-4408</guid>
    <pubDate>Tue, 10 Dec 2013 06:14:55 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2013-4408</strong></p>
  <p>Heap-based buffer overflow in the dcerpc_read_ncacn_packet_done function in librpc/rpc/dcerpc_util.c in winbindd in Samba 3.x before 3.6.22, 4.0.x before 4.0.13, and 4.1.x before 4.1.3 allows remote AD domain controllers to execute arbitrary code via an invalid fragment length in a DCE-RPC packet.</p>
  <p><strong>CVSS:</strong> 8.3 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2013-4408">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2012-0131 – Distributed Computing Environment (DCE) 1.8 and 1.9 on HP HP-UX B.11.11 and B.11...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2012-0131</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2012-0131</guid>
    <pubDate>Thu, 05 Apr 2012 13:55:01 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2012-0131</strong></p>
  <p>Distributed Computing Environment (DCE) 1.8 and 1.9 on HP HP-UX B.11.11 and B.11.23 allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.</p>
  <p><strong>CVSS:</strong> 10.0 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2012-0131">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2008-4418 – Unspecified vulnerability in DCE in HP HP-UX B.11.11, B.11.23, and B.11.31 allow...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2008-4418</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2008-4418</guid>
    <pubDate>Thu, 11 Dec 2008 15:30:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2008-4418</strong></p>
  <p>Unspecified vulnerability in DCE in HP HP-UX B.11.11, B.11.23, and B.11.31 allows remote attackers to cause a denial of service via unknown vectors.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2008-4418">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2007-6507 – SpntSvc.exe daemon in Trend Micro ServerProtect 5.58 for Windows, before Securit...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2007-6507</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2007-6507</guid>
    <pubDate>Thu, 20 Dec 2007 23:46:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2007-6507</strong></p>
  <p>SpntSvc.exe daemon in Trend Micro ServerProtect 5.58 for Windows, before Security Patch 4, exposes unspecified dangerous sub-functions from StRpcSrv.dll in the DCE/RPC interface, which allows remote attackers to obtain "full file system access" and execute arbitrary code.</p>
  <p><strong>CVSS:</strong> 10.0 · <strong>CWE:</strong> CWE-264</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2007-6507">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2007-6195 – Buffer overflow in the sw_rpc_agent_init function in swagentd in Software Distri...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2007-6195</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2007-6195</guid>
    <pubDate>Sat, 15 Dec 2007 01:46:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2007-6195</strong></p>
  <p>Buffer overflow in the sw_rpc_agent_init function in swagentd in Software Distributor (SD), and possibly other DCE applications, in HP HP-UX B.11.11 and B.11.23 allows remote attackers to execute arbitrary code or cause a denial of service via malformed arguments in an opcode 0x04 DCE RPC request.</p>
  <p><strong>CVSS:</strong> 10.0 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2007-6195">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2006-5276 – Stack-based buffer overflow in the DCE/RPC preprocessor in Snort before 2.6.1.3,...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2006-5276</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2006-5276</guid>
    <pubDate>Tue, 20 Feb 2007 01:28:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2006-5276</strong></p>
  <p>Stack-based buffer overflow in the DCE/RPC preprocessor in Snort before 2.6.1.3, and 2.7 before beta 2; and Sourcefire Intrusion Sensor; allows remote attackers to execute arbitrary code via crafted SMB traffic.</p>
  <p><strong>CVSS:</strong> 10.0 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2006-5276">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2005-3644 – PNP_GetDeviceList (upnp_getdevicelist) in UPnP for Microsoft Windows 2000 SP4 an...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2005-3644</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2005-3644</guid>
    <pubDate>Thu, 17 Nov 2005 11:02:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2005-3644</strong></p>
  <p>PNP_GetDeviceList (upnp_getdevicelist) in UPnP for Microsoft Windows 2000 SP4 and earlier, and possibly Windows XP SP1 and earlier, allows remote attackers to cause a denial of service (memory consumption) via a DCE RPC request that specifies a large output buffer size, a variant of CVE-2006-6296, and a different vulnerability than CVE-2005-2120.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-399</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2005-3644">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2004-0716 – Buffer overflow in the DCE daemon (DCED) for the DCE endpoint mapper (epmap) on ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2004-0716</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2004-0716</guid>
    <pubDate>Fri, 06 Aug 2004 04:00:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2004-0716</strong></p>
  <p>Buffer overflow in the DCE daemon (DCED) for the DCE endpoint mapper (epmap) on HP-UX 11 allows remote attackers to execute arbitrary code via a request with a small fragment length and a large amount of data.</p>
  <p><strong>CVSS:</strong> 10.0 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2004-0716">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-1999-1247 – Vulnerability in HP Camera component of HP DCE/9000 in HP-UX 9.x allows attacker...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-1999-1247</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-1999-1247</guid>
    <pubDate>Wed, 24 Feb 1999 05:00:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-1999-1247</strong></p>
  <p>Vulnerability in HP Camera component of HP DCE/9000 in HP-UX 9.x allows attackers to gain root privileges.</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-1999-1247">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
